RaqibCTI
CVE

CVE-2025-3928

P2
Commvault Web Server Unspecified Vulnerability
Commvault · Web Server
Date added (CISA)
2025-04-28
Remediation due
2025-05-19
Known ransomware use
Not indicated
Remediation priority
P2past CISA due date

Description

Commvault Web Server contains an unspecified vulnerability that allows a remote, authenticated attacker to create and execute webshells.

Source: NVD ↗ · CISA KEV Catalog ↗